- EPSS 1.16%
- Veröffentlicht 28.03.2019 00:29:00
- Zuletzt bearbeitet 21.11.2024 04:37:17
A vulnerability in the web UI of Cisco IOS XE Software could allow an authenticated but unprivileged (level 1), remote attacker to run privileged Cisco IOS commands by using the web UI. The vulnerability is due to a failure to validate and sanitize i...
CVE-2019-1737
- EPSS 1.16%
- Veröffentlicht 27.03.2019 23:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:12
A vulnerability in the processing of IP Service Level Agreement (SLA) packets by Cisco IOS Software and Cisco IOS XE software could allow an unauthenticated, remote attacker to cause an interface wedge and an eventual denial of service (DoS) conditio...
CVE-2018-0282
- EPSS 0.36%
- Veröffentlicht 10.01.2019 00:29:00
- Zuletzt bearbeitet 21.11.2024 03:37:53
A vulnerability in the TCP socket code of Cisco IOS and IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerability is due to a state condition between the socket state and the transmission...
CVE-2018-15371
- EPSS 0.05%
- Veröffentlicht 05.10.2018 14:29:06
- Zuletzt bearbeitet 21.11.2024 03:50:38
A vulnerability in the shell access request mechanism of Cisco IOS XE Software could allow an authenticated, local attacker to bypass authentication and gain unrestricted access to the root shell of an affected device. The vulnerability exists becaus...
CVE-2018-15372
- EPSS 0.29%
- Veröffentlicht 05.10.2018 14:29:06
- Zuletzt bearbeitet 21.11.2024 03:50:38
A vulnerability in the MACsec Key Agreement (MKA) using Extensible Authentication Protocol-Transport Layer Security (EAP-TLS) functionality of Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to bypass authentication and pass t...
CVE-2018-15373
- EPSS 0.25%
- Veröffentlicht 05.10.2018 14:29:06
- Zuletzt bearbeitet 21.11.2024 03:50:38
A vulnerability in the implementation of Cisco Discovery Protocol functionality in Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to exhaust memory on an affected device, resulting in a denial of servic...
CVE-2018-15374
- EPSS 0.03%
- Veröffentlicht 05.10.2018 14:29:06
- Zuletzt bearbeitet 21.11.2024 03:50:39
A vulnerability in the Image Verification feature of Cisco IOS XE Software could allow an authenticated, local attacker to install a malicious software image or file on an affected device. The vulnerability is due to the affected software improperly ...
CVE-2018-0472
- EPSS 14.92%
- Veröffentlicht 05.10.2018 14:29:05
- Zuletzt bearbeitet 21.11.2024 03:38:18
A vulnerability in the IPsec driver code of multiple Cisco IOS XE Software platforms and the Cisco ASA 5500-X Series Adaptive Security Appliance (ASA) could allow an unauthenticated, remote attacker to cause the device to reload. The vulnerability is...
CVE-2018-0475
- EPSS 0.35%
- Veröffentlicht 05.10.2018 14:29:05
- Zuletzt bearbeitet 21.11.2024 03:38:18
A vulnerability in the implementation of the cluster feature of Cisco IOS Software and Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to trigger a denial of service (DoS) condition on an affected device. The vulnerability is ...
CVE-2018-0476
- EPSS 4.88%
- Veröffentlicht 05.10.2018 14:29:05
- Zuletzt bearbeitet 21.11.2024 03:38:18
A vulnerability in the Network Address Translation (NAT) Session Initiation Protocol (SIP) Application Layer Gateway (ALG) of Cisco IOS XE Software could allow an unauthenticated, remote attacker to cause an affected device to reload. The vulnerabili...